Security you can check for yourself
We hold no certifications – what we can do is show you every mechanism on this page. Development, data storage and AI inference in Germany.
Operations and data residency
Your instance runs separately from every other customer. Development, data storage and AI inference all happen in Germany. We will run your instance in your own data centre if you need that; we recommend letting us operate it, because updates then reach you straight away and no maintenance work lands on your side. Intra AI itself holds no certification – we work to the control catalogue of Article 32 GDPR and disclose our technical and organisational measures in full as an annex to the data processing agreement.
Access and sign-in
Accounts are created by your administrators only. There is no self-registration, no social logins and no shared accounts. TOTP two-factor authentication can be enforced across the entire instance, and passkeys (WebAuthn/FIDO2) can replace the password entirely where you want that. Signing out or disabling an account takes effect immediately on every device, because sessions are checked server-side on every request. On request we connect your corporate sign-in over OpenID Connect.
Encryption and deletion
Every user has their own data key; content is stored encrypted in the database, the file store and the search index. Delete the key and that user’s entire data becomes permanently unreadable – that is how we implement the right to erasure under Article 17 GDPR. Conversations and uploaded files are deleted automatically after 90 days without use; the period is agreed when your instance is set up.
Traceability
118 recorded event types – from sign-in through every tool call to every data export. Your administrators read the log in the admin area, and entries are deleted automatically after 90 days. Alongside it sit server-side scheduled backups and revocation of any share link.
Where your instance runs
Every customer gets a dedicated instance, separated from every other. We run it in Germany and recommend exactly that – but running it in your own data centre is possible where your own policies require it.
A dedicated instance, operated by us
RecommendedYour instance runs in Germany, separated from every other customer. Updates and new features reach you the moment they are ready, and the maintenance work stays with us rather than with your IT team. This is the route every one of our customers takes today.
Running it in your own data centre
Where your own policies require running it in-house, we will set that up. Talk to us early: we go through the requirements together and agree the rhythm on which updates are applied at your end.
Web search through a European service
Web search runs through a European search service. What is transmitted is your query text – and, where the AI is asked to read one specific page, that page’s hostname together with a query derived from its address. No user identifiers, no cookies, no correlation IDs.
Integrations carry the user’s own permissions
Each member of staff connects their own account. An agent works with those credentials and therefore sees exactly what that person is already allowed to see, never through a shared collective login. The credentials are encrypted per user.
Code execution with no network access
AI-generated code runs in a sealed sandbox with no internet access and no reach into the database, file store or search index. The working directory is wiped after every run.
Your content is never used for training
Neither we nor the subprocessors we use apply your inputs or the generated answers to train or improve AI models. We commit to that contractually.
Frequently asked questions
Are you ISO 27001 certified?
No. And because that matters to your procurement, here is what you get instead: the Article 28 GDPR data processing agreement with a complete annex on technical and organisational measures and the list of every subprocessor, before signing and in a form your data protection officer can review. We work to the control catalogue of Article 32 GDPR and set out every individual measure.
Does our data ever leave Germany?
Development, data storage and AI inference all happen in Germany. For web search, your query text is transmitted to a European search service – and, where the AI is asked to read one specific page, that page’s hostname together with a query derived from its address. Every processor involved appears in the list of subprocessors you receive before signing.
Can we run Intra AI in our own data centre?
Yes, that is possible. It is not what we recommend, though: every customer gets a dedicated instance, separated from every other, that we run in Germany. That way updates and new features reach you the moment they ship, and the maintenance work stays with us rather than with your IT team. If your own policies require running it in-house, we will set that up – talk to us and we will go through the requirements together.
How quickly does revoking access take effect?
Immediately. Every session is bound to a server-side record that is checked on each request. Signing out all devices or disabling an account takes effect at once, not when a token happens to expire.
Has the platform been audited externally?
No. Every security review to date has been an internal audit, and we would rather say so plainly. We are happy to walk you through where those reviews stand and what we changed as a result.
Let’s work through your IT requirements
Bring your security requirements or your IT department’s questionnaire. We will go through it in the intro call and say, line by line, whether we meet it or not.